LaborLens
← Back to LaborLensSECURITY

Protecting compensation data

LaborLens is designed to limit access to reports while keeping the analysis useful and easy to reach for authorized users.

Security overview updated August 12, 2026

Current safeguards

  • HTTPS for data in transit
  • Server-side storage for service credentials and the Gemini API key
  • Account-based access for saved reports
  • High-entropy private links for guest results
  • Separate administrator authentication and access controls
  • Same-origin checks, upload limits, security logging and request limits

Safe use

  • Use a unique password for your LaborLens account
  • Do not share private report links
  • Sign out on shared devices
  • Upload only the report data needed for analysis
  • Never send passwords or full government and banking identifiers through feedback

Report a vulnerability

Use Contact and begin the feedback message with “Security report.” Include the affected page, steps to reproduce and potential impact. Do not access another person’s data, disrupt the service or publicly disclose an unresolved issue.

Scope

This page describes current practices, not a certification or guarantee. Security controls evolve as LaborLens changes.